0%

Explore Courses Defend What Matters

Your Bag

Wireless & Wi-Fi Security Testing

04 Penetration Testing

Wireless & Wi-Fi Security Testing

Assess wireless networks properly, from WPA2 and WPA3 handshakes to rogue access points and enterprise authentication weaknesses.

Levels
04
Skill Range
Beginner Expert
Track
Penetration Testing
Lifetime Access
Wireless & Wi-Fi Security Testing
From 203CREDS

Wireless is the one perimeter an attacker can reach from the car park, and it is routinely tested badly. This course covers 802.11 properly: frames, channels, and what a capture actually shows you. You will assess WEP, WPA2-PSK, and WPA3, understand why the SAE handshake changed the attack economics, and practise handshake capture and offline cracking within a lab you own. Enterprise wireless gets real attention, including EAP method weaknesses, certificate validation failures on clients, and evil twin and rogue access point attacks that exploit them. Bluetooth and common IoT radio exposure are covered as adjacent surfaces. You will finish able to run a full wireless assessment and write it up.

Curriculum

Learning Path

Each level is enrolled separately. Work through them in order, or start at the level that matches your experience.

  1. Level 01

    Beginner

    203 CREDS

    Purpose

    Read 802.11 properly, because a capture is meaningless until you know what the frames are.

    Outcome

    You can capture and read 802.11 traffic.

    What You'll Learn
    • Identify frame types, channels, and what a wireless capture actually shows.
    • Put an adapter into monitor mode and collect traffic in a lab.
    • Distinguish management, control, and data frames on sight.
  2. Level 02

    Intermediate

    446 CREDS

    Purpose

    Assess WPA2 and WPA3 and understand why the newer handshake changed the maths.

    Outcome

    You can assess a WPA2 or WPA3 network and report realistic risk.

    What You'll Learn
    • Capture a WPA2 handshake and crack it offline in a lab you own.
    • Compare WPA2-PSK against the WPA3 SAE handshake and its resistance.
    • State clearly what is and is not feasible against each.
  3. Level 03

    Advanced

    769 CREDS

    Purpose

    Attack enterprise wireless, where the real weaknesses in corporate networks live.

    Outcome

    You can compromise enterprise wireless through client-side weaknesses.

    What You'll Learn
    • Exploit EAP method weaknesses and client certificate validation failures.
    • Run evil twin and rogue access point attacks against a lab network.
    • Show how a single misconfigured client exposes credentials.
  4. Level 04

    Expert

    1,032 CREDS

    Purpose

    Extend to adjacent radio surfaces and deliver a complete wireless assessment.

    Outcome

    You can run and report a complete wireless assessment.

    What You'll Learn
    • Survey Bluetooth and common IoT radio exposure as part of the perimeter.
    • Combine wireless findings with the wired network they bridge to.
    • Produce a full wireless assessment report with prioritised remediation.